Skip to main content

Towards Automated Patch Management in a Hybrid Cloud

  • Conference paper
  • First Online:
Service-Oriented Computing (ICSOC 2019)

Part of the book series: Lecture Notes in Computer Science ((LNPSE,volume 11895))

Included in the following conference series:

  • 2513 Accesses

Abstract

Software patching is routinely employed for enterprise online applications to guard against ever-increasing security risks and to keep up with customer requirements. However, in a hybrid cloud setting, where an application deployment can span across diverse cloud environments, patching becomes challenging, especially since application components may be deployed as containers or VMs or bare-metal machines. Further, application tiers may have dependencies, which need to be respected. Worse, to minimize application downtime, selected patches need to be applied in a finite time period. This paper presents an automated patching strategy for hybrid-cloud—deployed applications that leverages a greedy algorithm design to optimally patch applications. Our implementation and evaluation results highlight the efficacy of our strategy and its superiority over alternative patching strategies.

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 39.99
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 54.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

References

  1. BigFix. https://www.ibm.com/security/endpoint-security/bigfix

  2. How to shut the window of (unpatched) opportunity. https://www.welivesecurity.com/2018/04/19/patching-shut-window-unpatched

  3. IBM Vulnerability Advisor. https://github.com/IBM-Bluemix-Docs/va

  4. Jmeter. https://jmeter.apache.org

  5. Stock-trader application. https://github.com/IBMStockTrader

  6. Time’s up for the Ticker? Facebook appears to axe feed for tracking your friends’ activity. https://techcrunch.com/2017/12/10/times-up-for-facebook-ticker/

  7. Weavescope. https://github.com/weaveworks/scope

  8. Hopmann, A., et al.: High availability of machines during patching

    Google Scholar 

  9. Wang, C., et al.: VScope: middleware for troubleshooting time-sensitive data center applications. In: Narasimhan, P., Triantafillou, P. (eds.) Middleware 2012. LNCS, vol. 7662, pp. 121–141. Springer, Heidelberg (2012). https://doi.org/10.1007/978-3-642-35170-9_7

    Chapter  Google Scholar 

  10. Dake, S.C.: Containerized upgrade in operating system level virtualization

    Google Scholar 

  11. Kloeckner, K., et al.: Building a cognitive platform for the managed it services lifecycle. IBM J. Res. Dev. 62(1), 8–11 (2018)

    Article  Google Scholar 

  12. Plummer, S., Warden, D.: Puppet: introduction, implementation & the inevitable refactoring. In: Proceedings of the 2016 ACM SIGUCCS Annual Conference (2016)

    Google Scholar 

Download references

Author information

Authors and Affiliations

Authors

Corresponding authors

Correspondence to Ubaid Ullah Hafeez , Alexei Karve , Braulio Dumba , Anshul Gandhi or Sai Zeng .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2019 Springer Nature Switzerland AG

About this paper

Check for updates. Verify currency and authenticity via CrossMark

Cite this paper

Hafeez, U.U., Karve, A., Dumba, B., Gandhi, A., Zeng, S. (2019). Towards Automated Patch Management in a Hybrid Cloud. In: Yangui, S., Bouassida Rodriguez, I., Drira, K., Tari, Z. (eds) Service-Oriented Computing. ICSOC 2019. Lecture Notes in Computer Science(), vol 11895. Springer, Cham. https://doi.org/10.1007/978-3-030-33702-5_26

Download citation

  • DOI: https://doi.org/10.1007/978-3-030-33702-5_26

  • Published:

  • Publisher Name: Springer, Cham

  • Print ISBN: 978-3-030-33701-8

  • Online ISBN: 978-3-030-33702-5

  • eBook Packages: Computer ScienceComputer Science (R0)

Publish with us

Policies and ethics